github spring-projects/spring-security 5.3.0.RC1

latest releases: 6.2.4, 6.1.9, 5.8.12...
pre-release4 years ago

⭐ New Features

  • Add RSocket Authentication Extension Support #7935
  • SecurityEvaluationContextExtension.getRootObject() Specific Type #7891
  • Add oauth2Client MockMvc Test Support #7886
  • Nimbus JwtDecoders should differentiate token and service errors #7885
  • Remove redundant branches from SessionManagementConfigurer #7879
  • AuthenticationWebFilter's ReactiveAuthenticationManagerResolver should take a ServerWebExchange #7872
  • SAML2: Wrong IdP response URL throws NPE (for non-existing "RelyingParty") #7865
  • Typo in doc #7830
  • Add oauth2Login Reactive Test support #7828
  • Improve Bearer Token Error Handling #7826
  • Add BearerTokenErrors #7823
  • Add InvalidBearerTokenException #7822
  • Make OAuth2AccessToken converters public #7815
  • AuthenticationEventPublisher Lookup #7802
  • Modernize Documentation Styling #7801
  • Invalid OAuth2 login attempts don't emit a corresponding ApplicationEvent #7793
  • Set secure on cookie when logging out #7764
  • Introduce Reactive OAuth2Authorization success/failure handlers #7756
  • ProviderManager should have a varargs constructor #7713
  • Introduce Reactive OAuth2Authorization success/failure handlers #7699
  • Migrate LDAP integration tests groovy->java #7691
  • WebSecurityConfigurerAdapter: Unable to use custom AuthenticationEventPublisher #7515
  • Add Jackson support to OAuth2 session related classes #4886

🪲 Bug Fixes

  • Build failing with NoSuchMethodError #7888
  • cassample integration tests are failing #7874
  • Form login requiresAuthenticationMatcher is not used in WebFlux #7863
  • BasicAuthenticationFilter ignores credentials charset #7835
  • Default LDIF file not picked up in LDAP "unboundid" mode #7833
  • Incorrect LDIF file example in LDAP documentation #7832
  • OpaqueTokenRequestPostProcessor should respect configuration order #7800
  • Form Login authenticationFailureHandler is not used in ServerHttpSecurity #7782

🔨 Dependency Upgrades

  • Update to Gradle 6.1.1 #7936
  • Update to GAE 1.9.78 #7893
  • Update to Spring Boot 2.2.4.RELEASE #7892
  • Update Gradle 6.1 #7838

❤️ Contributors

We'd like to thank all the contributors who worked on this release!

Don't miss a new spring-security release

NewReleases is sending notifications on new releases.